Description
In Apache ActiveMQ 5.x before 5.14.2, an instance of a cross-site scripting vulnerability was identified to be present in the web based administration console. The root cause of this issue is improper user data output validation.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-2610 | In Apache ActiveMQ 5.x before 5.14.2, an instance of a cross-site scripting vulnerability was identified to be present in the web based administration console. The root cause of this issue is improper user data output validation. |
Github GHSA |
GHSA-5jg4-p78r-p5j3 | Improper Neutralization of Input During Web Page Generation Apache ActiveMQ |
References
History
No history.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-09-16T22:41:37.290Z
Reserved: 2016-08-12T00:00:00.000Z
Link: CVE-2016-6810
No data.
Status : Modified
Published: 2018-01-10T15:29:00.190
Modified: 2024-11-21T02:56:52.573
Link: CVE-2016-6810
OpenCVE Enrichment
No data.
EUVD
Github GHSA